Security Incidents mailing list archives

Re: New intrusion script?


From: Mark Bainter <mark-spamx () webtech dresser com>
Date: 15 May 2003 23:35:19 -0000

In-Reply-To: <20030515225329.29403.qmail () www securityfocus com>

Today near the end of the day my inbox was suddenly
flooded with messages from my log monitoring tool that
monitors my error_log on the webserver.  At first I
thought a new developer we setup today really goofed,
but the ip address was wrong, as was the uris they 
were trying to hit.

Never mind.  I got a response from the company arin
lists as holding the IP.  It's leased to a security
company that does scans of your network.  In this case,
it looks like someone requested a scan but didn't
bother to tell anyone about it first.

How nice.

----------------------------------------------------------------------------
*** Wireless LAN Policies for Security & Management - NEW White Paper ***
Just like wired networks, wireless LANs require network security policies 
that are enforced to protect WLANs from known vulnerabilities and threats. 
Learn to design, implement and enforce WLAN security policies to lockdown enterprise WLANs.

To get your FREE white paper visit us at:    
http://www.securityfocus.com/AirDefense-incidents
----------------------------------------------------------------------------


Current thread: